The Register

Subscribe to The Register feed
Biting the hand that feeds IT — Enterprise Technology News and Analysis
Updated: 58 min 27 sec ago

America's cyber defenses are being dismantled from the inside

Wed, 23/04/2025 - 09:27
The CVE system nearly dying shows that someone has lost the plot

Opinion  We almost lost the Common Vulnerabilities and Exposures (CVE) database system, but that's only the tip of the iceberg of what President Trump and company are doing to US cybersecurity efforts.…

Categories: News

RIP, Google Privacy Sandbox

Tue, 22/04/2025 - 21:20
Chrome will keep third-party cookies, a win for web giant's ad rivals

After six years of work, Google's Privacy Sandbox, technology for delivering ads while protecting privacy, looks like dust in the wind.…

Categories: News

Two CISA officials jump ship, both proud of pushing for Secure by Design software

Tue, 22/04/2025 - 20:30
As cyber-agency faces cuts, makes noises about switching up program

Two top officials have resigned from Uncle Sam's Cybersecurity and Infrastructure Security Agency, aka CISA, furthering fears of a brain drain amid White House cuts to the federal workforce.…

Categories: News

Fog ransomware channels Musk with demands for work recaps or a trillion bucks

Tue, 22/04/2025 - 19:02
In effect: 'Ha ha – the government is borked and so are you'

Ransomware scumbags - potentially those behind the Fog gang - are channeling their inner Elon Musk with their latest ransom note, spotted by researchers at Trend Micro.…

Categories: News

A pot of $250K is now available to ransomware researchers, but it feeds a commercial product

Tue, 22/04/2025 - 18:08
Security bods can earn up to $10K per report

Ransomware threat hunters can now collect rewards of $10,000 for each piece of intel they file under a new bug bounty that aims to squash extortionists.…

Categories: News

This is not just any 'cyber incident' … this is an M&S 'cyber incident'

Tue, 22/04/2025 - 17:07
Retailer tight-lipped on details as digital hiccup disrupts customer orders

UK high street mainstay Marks & Spencer told the London Stock Exchange this afternoon it has been managing a "cyber incident" for "the past few days."…

Categories: News

UN says Asian scam call center epidemic expanding globally amid political heat

Tue, 22/04/2025 - 16:15
What used to be a serious issue mainly in Southeast Asia is now the world’s problem

Scam call centers are metastasizing worldwide "like a cancer," according to the United Nations, which warns the epidemic has reached a global inflection point as syndicates scale up and spread out.…

Categories: News

Bug hunter tricked SSL.com into issuing cert for Alibaba Cloud domain in 5 steps

Tue, 22/04/2025 - 03:23
10 other certificates 'were mis-issued and have now been revoked'

Certificate issuer SSL.com’s domain validation system had an unfortunate bug that was exploited by miscreants to obtain, without authorization, digital certs for legit websites.…

Categories: News

Today's LLMs craft exploits from patches at lightning speed

Mon, 21/04/2025 - 21:31
Erlang? Er, man, no problem. ChatGPT, Claude to go from flaw disclosure to actual attack code in hours

The time from vulnerability disclosure to proof-of-concept (PoC) exploit code can now be as short as a few hours, thanks to generative AI models.…

Categories: News

Microsoft rated this bug as low exploitability. Miscreants weaponized it in just 8 days

Mon, 21/04/2025 - 18:43
It's now hitting govt, enterprise targets

On March 11 - Patch Tuesday - Microsoft rolled out its usual buffet of bug fixes. Just eight days later, miscreants had weaponized one of the vulnerabilities, using it against government and private sector targets in Poland and Romania.…

Categories: News

Hacking US crosswalks to talk like Zuck is as easy as 1234

Sat, 19/04/2025 - 14:03
AI-spoofed Mark joins fellow billionaires as the voice of the street – here's how it was probably done

Video  Crosswalk buttons in various US cities were hijacked over the past week or so to – rather than robotically tell people it's safe to walk or wait – instead emit the AI-spoofed voices of Jeff Bezos, Elon Musk, and Mark Zuckerberg.…

Categories: News

Dems fret over DOGE feeding sensitive data into random AI

Fri, 18/04/2025 - 20:06
Using LLMs to pick programs, people, contracts to cut is bad enough – but doing it with Musk's Grok? Yikes

A group of 48 House Democrats is concerned that Elon Musk's cost-trimmers at DOGE are being careless in their use of AI to help figure out where to slash, creating security risks and giving the oligarch's artificial intelligence lab an inside track to train its models on government info.…

Categories: News

Oracle hopes talk of cloud data theft dies off. CISA just resurrected it for Easter

Fri, 18/04/2025 - 17:28
Some in the infosec world definitely want to see Big Red crucified

CISA – the US government's Cybersecurity and Infrastructure Security Agency – has issued an alert for those who missed Oracle grudgingly admitting some customer data was stolen from the database giant's public cloud infrastructure.…

Categories: News

CVE fallout: The splintering of the standard vulnerability tracking system has begun

Fri, 18/04/2025 - 10:54
MITRE, EUVD, GCVE … WTF?

Comment  The splintering of the global system for identifying and tracking security bugs in technology products has begun.…

Categories: News

Krebs throws himself on the grenade, resigns from SentinelOne after Trump revokes clearances

Thu, 17/04/2025 - 19:56
Illegitimi non carborundum? Nice password, Mr Ex-CISA

Chris Krebs, the former head of the US Cybersecurity and Infrastructure Security Agency (CISA) and a longtime Trump target, has resigned from SentinelOne following a recent executive order that targeted him and revoked the security clearances of everybody at the company.…

Categories: News

Brit soldiers tune radio waves to fry drone swarms for pennies

Thu, 17/04/2025 - 11:45
Truck-mounted demonstration weapon costs 10p a pop, says MOD

British soldiers have successfully taken down drones with a radio-wave weapon.…

Categories: News

Whistleblower describes DOGE IT dept rampage at America's labor watchdog

Thu, 17/04/2025 - 03:46
Ignored infosec rules, exfiltrated data … then the mysterious login attempts from a Russian IP address began – claim

Democratic lawmakers are calling for an investigation after a tech staffer at the US National Labor Relations Board (NLRB) blew the whistle on the cost-trimming DOGE's activities at the employment watchdog – which the staffer claims included being granted superuser status in contravention of standard operating procedures, exfiltrating data, and seemingly leaking credentials to someone with a Russian IP address.…

Categories: News

Free Blue Screens of Death for Windows 11 24H2 users

Wed, 16/04/2025 - 22:16
Microsoft rewards those who patch early with bricks hurled through its operating system

Keeping with its rich history of updates that break Windows in unexpected ways, Microsoft has warned that two recent patches for Windows 11 24H2 are triggering blue screen crashes.…

Categories: News

Signalgate chats vanish from CIA chief phone

Wed, 16/04/2025 - 21:58
Extraordinary rendition of data, or just dropped it out of a helicopter?

CIA Director John Ratcliffe's smartphone has almost no trace left of the infamous Signalgate chat – the one in which he and other top US national security officials discussed a secret upcoming military operation in a group Signal conversation a journalist was inadvertently added to.…

Categories: News

Identifying the cyber risks that matter

Wed, 16/04/2025 - 20:01
From noise to clarity: Why CISOs are shifting to adversarial exposure validation

Partner content  A vast majority of security teams are overwhelmed by the large number of security alerts and vulnerabilities.…

Categories: News

Pages